relhaRelha logo
← Back to all jobs
logo

Director, Governance, Risk, and Compliance - Global Industrial

Genuine Parts
Birmingham, AL
Posted 1 day ago

Overview

Birmingham, AL
Hybrid

SUMMARY:

The Director of Governance, Risk & Compliance (GRC) will lead the IT Risk and Compliance functions within the department; providing leadership and hands-on guidance across all security governance, risk, and compliance initiatives, while acting as the primary security liaison with IT Operations and Application Development teams on ongoing compliance efforts.

JOB DUTIES

Develops, implements, and manages an effective IT Risk Management program tailored to Motion's scale and risk profile, including formal risk assessments of projects, risk exception/acceptance process, technologies, processes, and third-party vendors.

Identifies, assesses, and documents key IT risks and implement relevant controls to manage them.

Monitors and continuously improves the effectiveness of controls protecting Motion's information assets.

Coordinates third-party audits, including penetration tests, PCI, and SOX assessments.

Manages compliance and awareness projects across operations, security, and development teams, ensuring alignment with regulatory and legal requirements relevant to Motion's business.

Provides reports for board and audit committee updates.

Oversees the execution and support for cyber insurance.

Oversees vulnerability management processes - scanning, prioritization, and remediation tracking - and maintain visibility into Motion's external attack surface.

Partners with other IT departments to ensure timely patching and remediation of identified vulnerabilities.

Performs other duties as assigned.

EDUCATION & EXPERIENCE

Typically requires a bachelor's degree and fifteen (15) or more years of related experience.

Typically requires seven (7) or more years diversified leadership, planning, communication, organization and people motivation skill.

KNOWLEDGE, SKILLS, ABILITIES

Knowledge of information security standards and regulations, including PCI-DSS, SOX, and NIST.

Understanding of infrastructure and application security principles for risk identification and analysis.

Experience with third-party IT security management.

Experience leading security or privacy awareness programs.

Excellent written, oral, and interpersonal communication skills with the ability to present ideas in business-friendly, accessible language.

Highly self-motivated, with the ability to operate effectively in a hands-on organizational structure and to prioritize effectively against deadlines.

Team-oriented and comfortable wearing multiple hats in a collaborative environment .

CISSP, CISM, CISA, CIPP, or similar certifications.

Practical experience managing Business Continuity and/or Incident Response programs.

Experience working with vulnerability management and attack surface management tooling.

Experience working with cloud, big data, and mobile technologies.

PHYSICAL DEMANDS:

LICENSES & CERTIFICATIONS:

SUPERVISORY RESPONSIBILITY:

2-5 Direct Reports

5-10 Direct Reports

More than 10 Direct Reports

BUDGET RESPONSIBILITY: Yes

COMPANY INFORMATION:

Motion offers an excellent benefits package which includes options for healthcare coverage, 401(k), tuition reimbursement, vacation, sick, and holiday pay.

Not the right fit? Let us know you're interested in a future opportunity by joining our Talent Community on jobs.genpt.com or create an account to set up email alerts as new job postings become available that meet your interest!

GPC conducts its business without regard to sex, race, creed, color, religion, marital status, national origin, citizenship status, age, pregnancy, sexual orientation, gender identity or expression, genetic information, disability, military status, status as a veteran, or any other protected characteristic. GPC's policy is to recruit, hire, train, promote, assign, transfer and terminate employees based on their own ability, achievement, experience and conduct and other legitimate business reasons.

← Back to all jobs

Disclaimer:
The information provided on this site is for general informational purposes only. While we strive to ensure the accuracy and reliability of the content, we make no guarantees regarding its completeness or correctness. It is ultimately the responsibility of the user to independently verify any information before relying on it.

If you believe you have found a data error please report it here